CVE-2019-6548: Critical severity ge ge communicator vulnerability
Published May 9, 2019
·Updated
GE Communicator, all versions prior to 4.0.517, contains two backdoor accounts with hardcoded credentials, which may allow control over the database. This service is inaccessible to attackers if Windows default firewall settings are used by the end user.
Affected Software
1 affected component
GE GE Communicator<4.0.517
Event History
May 9, 2019
CVE Published
via MITRE·02:28 PM
Data Sourced
via MITRE·02:28 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-6548?
CVE-2019-6548 has a critical severity rating due to the presence of backdoor accounts with hardcoded credentials.
2
How do I fix CVE-2019-6548?
To fix CVE-2019-6548, upgrade to GE Communicator version 4.0.517 or later.
3
What are the impacts of CVE-2019-6548?
CVE-2019-6548 could allow unauthorized control over the database due to the backdoor accounts.
4
What versions are affected by CVE-2019-6548?
CVE-2019-6548 affects all versions of GE Communicator prior to 4.0.517.
5
Is the CVE-2019-6548 vulnerability exposed to the internet?
CVE-2019-6548 is generally inaccessible to attackers if the default Windows firewall settings are used.